Skip to content
Noroxi

CWE-696 · 45 records

Incorrect Behavior Order

CVEs in this class

45 records

  • Firewall bypass during shutdown

    CriticalCVSS 9.3No exploitEPSS 1%

    phoenix contact · charx sec-3150Jul 30, 2026

  • ibc-go: Potential Reentrancy using Timeout Callbacks in ibc-hooks

    CriticalCVSS 9.1No exploit

    Go · github.com/cosmos/ibc-go/v4Apr 5, 2024

  • GitHub Copilot CLI: Nested Bare Repository Can Execute Arbitrary Commands via core.fsmonitor

    HighCVSS 8.5Proof of conceptEPSS 0%

    github · copilot-cliMay 13, 2026

  • ads-tec Industrial IT: Account lockout via non-atomic user creation

    HighCVSS 8.1No exploitEPSS 1%

    ads-tec industrial it · dvg-irf1401Jul 28, 2026

  • In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line.

    HighCVSS 8.1No exploitEPSS 0%

    openbsd · opensshApr 2, 2026

  • Junos OS: MX Series: MPC 7/8/9/10/11 cards with MAP-E: PFE halts when an attacker sends malformed IPv4 or IPv6 traffic inside the MAP-E tunnel.

    HighCVSS 7.5No exploitEPSS 1%

    juniper · junosOct 19, 2021

  • GraphQL grant on a property might be cached with different objects

    HighCVSS 7.5No exploitEPSS 1%

    api-platform · coreApr 3, 2025

  • Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can trigger conflicting data with val.p of NULL b

    HighCVSS 7.5No exploitEPSS 1%

    arm · mbed tlsJul 20, 2025

  • Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplica

    HighCVSS 7.5No exploitEPSS 0%

    littlecms · little cmsApr 18, 2026

  • SolarWinds Platform Incorrect Behavior Order Vulnerability

    HighCVSS 7.2No exploitEPSS 3%

    solarwinds · solarwinds platformJul 26, 2023

  • Incorrect behavior order in transition between executive monitor and SMI transfer monitor (STM) in some Intel(R) Processor may allow a privi

    HighCVSS 7.3No exploitEPSS 0%

    Aug 14, 2024

  • Duplicate Advisory: OpenClaw: Tlon cite expansion happens before channel and DM authorization is complete

    HighCVSS 7.3No exploit

    npm · openclawApr 10, 2026

  • OpenClaw 2026.3.11 < 2026.3.25 - Session Isolation Bypass via sessionId Resolution

    HighCVSS 7.1No exploitEPSS 0%

    openclaw · openclawApr 9, 2026

  • Security Advisory 0160

    HighCVSS 7.0No exploitEPSS 0%

    arista networks · eosSep 15, 2026

  • OpenClaw < 2026.3.25 - Denial of Service via Unauthenticated Webhook Request Parsing

    MediumCVSS 6.9No exploitEPSS 1%

    openclaw · openclawApr 9, 2026

  • OpenClaw < 2026.3.22 - Unauthenticated Cryptographic Work in Nostr Inbound DM Handling

    MediumCVSS 6.9No exploitEPSS 1%

    openclaw · openclawApr 9, 2026

  • OpenClaw < 2026.3.22 - Unauthorized Action Execution via Callback Dispatch

    MediumCVSS 6.9No exploitEPSS 1%

    openclaw · openclawApr 10, 2026

  • cJSON JSON Patch Non-Atomic Application Destroys Data Before Validation

    MediumCVSS 6.9No exploitEPSS 0%

    davegamble · cjsonJul 29, 2026

  • OpenClaw < 2026.3.22 - Premature Cite Expansion Before Authorization in Channel and DM

    MediumCVSS 6.9No exploitEPSS 0%

    openclaw · openclawApr 9, 2026

  • BMC Control-M/Agent improper IP address filtering order

    MediumCVSS 6.9No exploitEPSS 0%

    bmc · control-m/agentSep 16, 2025

  • CVE-2025-9904
    27Monitor

    Unallocated memory access vulnerability in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Gener

    MediumCVSS 6.9No exploitEPSS 0%

    canon inc. · generic plus pcl6 printer driverSep 28, 2025

  • Junos OS: EX4300 Series: Loopback filter not blocking traffic despite having discard term.

    MediumCVSS 6.9No exploitEPSS 0%

    juniper · junosApr 12, 2024

  • Junos OS: EX4300 Series: Firewall filter not blocking egress traffic

    MediumCVSS 6.9No exploitEPSS 0%

    juniper · junosApr 12, 2024

  • In OpenStack Ironic through 35.x before a3f6d73, during image handling, an infinite loop in checksum calculations can occur via the file:///

    MediumCVSS 6.5No exploitEPSS 1%

    openstack · ironicMay 13, 2026

  • CVE-2025-0150
    26Monitor

    Zoom Workplace Apps for iOS - Incorrect Behavior Order

    MediumCVSS 6.5No exploitEPSS 0%

    zoom · meeting software development kitMar 11, 2025

All vulnerability classes